Multi-device log access method

The invention relates to the technical field of network security, in particular to a multi-device log access method. Comprising the steps of collecting log data of multi-element equipment; performing normalization processing on the log data, and defining an access format of the log data; the log dat...

Ausführliche Beschreibung

Gespeichert in:
Bibliographische Detailangaben
Hauptverfasser: ZUO QIUSHENG, FAN WEINING, MA XUEJUN, LIU WEINA
Format: Patent
Sprache:chi ; eng
Schlagworte:
Online-Zugang:Volltext bestellen
Tags: Tag hinzufügen
Keine Tags, Fügen Sie den ersten Tag hinzu!
Beschreibung
Zusammenfassung:The invention relates to the technical field of network security, in particular to a multi-device log access method. Comprising the steps of collecting log data of multi-element equipment; performing normalization processing on the log data, and defining an access format of the log data; the log data is accessed by selecting a configuration acquisition mode of a monitoring port, an acquisition process identifier, a data source type and a character coding type through a transport layer protocol; constructing a normalized data set; and comparing the collected target log data with the log data in the normalized data set through the data node, identifying the multivariate device corresponding to the target log data, and when the target log data is not matched with the log data of the corresponding multivariate device in the normalized data set, giving an alarm in real time. According to the method, unified access of the multi-element logs and unified management of the multi-element device logs can be effectively